7.5
CVE-2015-7266
- EPSS 0.27%
- Veröffentlicht 30.10.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 02:36:28
- Quelle cret@cert.org
- CVE-Watchlists
- Unerledigt
The Interactive Advertising Bureau (IAB) OpenRTB 2.3 protocol implementation might allow remote attackers to conceal the status of ad transactions and potentially compromise bid integrity by leveraging failure to limit the time between bid responses and impression notifications, aka the Amnesia Bug.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Iab ≫ Open Real-time Bidding Version2.3
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.27% | 0.474 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 3.9 | 3.6 |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|